Affected by GO-2022-0457
and 10 other vulnerabilities
GO-2022-0457: Access to Unix domain socket can lead to privileges escalation in Cilium in github.com/cilium/cilium
GO-2022-0458: Improper Privilege Management in Cilium in github.com/cilium/cilium
GO-2022-0959: Network Policies & (Clusterwide) Cilium Network Policies with namespace label selectors may unexpectedly select pods with maliciously crafted labels in github.com/cilium/cilium
GO-2023-1643: Potential network policy bypass when routing IPv6 traffic in github.com/cilium/cilium
GO-2023-1785: Potential HTTP policy bypass when using header rules in Cilium in github.com/cilium/cilium
GO-2023-2078: Kubernetes users may update Pod labels to bypass network policy in github.com/cilium/cilium
GO-2023-2079: Specific Cilium configurations vulnerable to DoS via Kubernetes annotations in github.com/cilium/cilium
GO-2023-2080: Cilium vulnerable to bypass of namespace restrictions in CiliumNetworkPolicy in github.com/cilium/cilium
GO-2024-2656: Unencrypted traffic between nodes with IPsec in github.com/cilium/cilium
GO-2024-2666: Insecure IPsec transparent encryption in github.com/cilium/cilium
GO-2024-3072: Policy bypass for Host Firewall policy due to race condition in Cilium agent in github.com/cilium/cilium
package
Version:
v1.6.0-rc5
Opens a new window with list of versions in this module.
Published: Jul 31, 2019
License: Apache-2.0
Opens a new window with license information.
Imports: 9
Opens a new window with list of imports.
Imported by: 0
Opens a new window with list of known importers.
Documentation
¶
-
type API
-
func (e *API) AssignPrivateIpAddresses(eniID string, addresses int64) error
-
func (e *API) AttachNetworkInterface(index int64, instanceID, eniID string) (string, error)
-
func (e *API) CreateNetworkInterface(toAllocate int64, subnetID, desc string, groups []string) (string, error)
-
func (e *API) DeleteNetworkInterface(eniID string) error
-
func (e *API) FindSubnetByTags(vpcID, availabilityZone string, required types.Tags) (bestSubnet *types.Subnet)
-
func (e *API) GetENI(instanceID string, index int) *v2.ENI
-
func (e *API) GetENIs(instanceID string) (enis []*v2.ENI)
-
func (e *API) GetSubnet(subnetID string) *types.Subnet
-
func (e *API) ModifyNetworkInterface(eniID, attachmentID string, deleteOnTermination bool) error
-
func (e *API) Resync()
-
func (e *API) SetDelay(op Operation, delay time.Duration)
-
func (e *API) SetLimiter(limit float64, burst int)
-
func (e *API) SetMockError(op Operation, err error)
-
type Operation
func (e *API) ModifyNetworkInterface(eniID, attachmentID string, deleteOnTermination bool) error
SetDelay specifies the delay which should be simulated for an individual EC2
API operation
SetLimiter adds a rate limiter to all simulated API calls
SetMockError modifies the mock API to return an error for a particular
operation
Operation is an EC2 API operation that this mock API supports
const (
AllOperations Operation = iota
CreateNetworkInterface
DeleteNetworkInterface
AttachNetworkInterface
ModifyNetworkInterface
AssignPrivateIpAddresses
MaxOperation
)
Source Files
¶
Click to show internal directories.
Click to hide internal directories.